[tor-talk] RIP Tor

CANNON NATHANIEL CIOTA cannon at cannon-ciota.info
Wed Jun 8 11:41:14 UTC 2016


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

  On Tue, Jun 07, 2016 at 02:12:43PM -0400, Not Friendly wrote:
> I do not understand why those people think that Tor is a honeypot by
> the federal government. It is OPEN SOURCE. If you are by any means
> worried look at the source code and compile it manually. There is no
> hiding a backdoor. Unless every relay operator is helping the
> federal government (which at that point the information would leak)
> then there isn't a way to backdoor Tor. I don't understand why
> people do not take the time to research things.

Open source and compiling from source is best option. Hopefully there 
are enough programmers that are able to interpret the source code 
examining it. Although the source code may be good, most users do not 
compile from source. Most users install pre-compiled binaries. If I was 
an adversary I would have the source code clean and have a backdoor in 
the pre-compiled binaries knowing most people do not compile from 
source. Most people is all it takes for a sybil position in the network. 
To mitigate such a thing, one good solution would be to replace 'apt-get 
install tor' with instructions of how to download, verify integrity, and 
compile from source; in guides aimed at aspiring Tor node operators and 
advanced users.
-----BEGIN PGP SIGNATURE-----

iQIcBAEBCgAGBQJXWAPpAAoJEAYDai9lH2mwOLYP/0Yb7pF2IWBK2ax4aoeh/RPr
2Jnjalj6Ddc1ioUlQmDbG7nvbNyDHa7uSK/WC+ZndBZIUhOL4SBM1HEGxTAtdcWn
w7furvOAPEXFFRSjgfdMtMwTchPzOtn3xz0vcS1CD9FM4Eg+Pmi92tVnfk1fpGfd
YnyXQKUXtYBgBtrqTAhTmTxKYPdjExXJqPERptjiRt9lsttw6Y2/xdXXfsXh/WnW
mt8Kofov52p39sZXqbt2tRjCXId/0lE6DVegd24Fqs83FFHMOe9qIn8WuLkohv27
tuHOVH8XlUaJFajOhcArjJvev2pdeeWaYR0c+ulAls5JaE2XEx613kGrlmOLTUpF
usxRLM8M1yT9pmHDtxsFvfAfPBa7E3tnZCNXKkPWXQr5BiraIHMZM3vDFDpvW8zr
KRr/QMBkRI+W+5V/4OTiMP+oBqY8fA7HO98siJtK9hwNLktQaQ+UUB+J3vFv1Jii
yslV4rP3mEWzoaykTe1nOo83uIr6N3NElJGe8IxAnnOvFi0GWrMOCmQrzBkrFrRz
8bfnDsQFIYuw2em+zVvZmPDJDKw/KwhFaTMq6pKfReWkpZ1YzvjSPAHtXWOc12zI
ww3itbSDXfY0vkiqAtFpkZ7rgvtse4tA6NUdcUx1cCVC7vmWojGm3Os/b9ArDA0X
IwNy2ESFjyKr9xeCv8cC
=mdAJ
-----END PGP SIGNATURE-----


-- 
Cannon N. Ciota
Website: www.cannon-ciota.info
Email: cannon at cannon-ciota.info
PGP Fingerprint: E7FB 0605 1BD4 8B88 B7BC 91A4 7DF7 76C7 25A6 AEE2


More information about the tor-talk mailing list